Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-22357


There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages due to validating inputs insufficiently. Attackers can exploit this vulnerability by sending specific messages to affected module. This can cause denial of service. Affected product versions include: S12700 V200R013C00SPC500, V200R019C00SPC500; S5700 V200R013C00SPC500, V200R019C00SPC500; S6700 V200R013C00SPC500, V200R019C00SPC500; S7700 V200R013C00SPC500, V200R019C00SPC500.


Published

2021-08-23T20:15:14.197

Last Modified

2024-11-21T05:49:58.170

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System huawei s12700_firmware v200r013c00spc500 Yes
Operating System huawei s12700_firmware v200r019c00spc500 Yes
Hardware huawei s12700 - No
Operating System huawei s5700_firmware v200r013c00spc500 Yes
Operating System huawei s5700_firmware v200r019c00spc500 Yes
Hardware huawei s5700 - No
Operating System huawei s6700_firmware v200r013c00spc500 Yes
Operating System huawei s6700_firmware v200r019c00spc500 Yes
Hardware huawei s6700 - No
Operating System huawei s7700_firmware v200r013c00spc500 Yes
Operating System huawei s7700_firmware v200r019c00spc500 Yes
Hardware huawei s7700 - No

References